Is it right that with HTTPS decrypt disabled that HTTPS suspicious URLs are allowed? I would have thought that this would be done at the URL level, before any decryption and scanning is performed.
This thread was automatically locked due to age.